Firewall-1

[FW-1] VPN Routing and vpn_route.conf file

Subject: [FW-1] VPN Routing and vpn_route.conf file
From: "Picard, Beverly" <bpicard AT LANDMARKMEDICAL DOT ORG>
To: FW-1-MAILINGLIST AT AMADEUS.US.CHECKPOINT DOT COM
Date: Wed, 17 Nov 2004 08:26:10 -0500
Morning - I have the following issue:



Currently running Checkpoint AI R55 on hardware platform Nokia 380 running
IPSO 3.8 .  I have 2 separate functional VPNs between CP -> Fortinet
Fortigate 50A and CP -> SonicWall.  Both are setup as interoperable devices.
Tunnels work well but trouble with the routing.



I need to route traffic from the Fortigate 50A --> CP -->  SonicWall .  The
VPN Community for the Fortigate 50A is a STAR community and have selected to
"Enable VPN Routing for satellites:  To Center, or through  the center to
other satellites, to internet and other VPN targets".  The following is a
capture of my vpn_route.conf file:



# destination   router  install_on              [force_override]

Fortigate_net     lmcip380        SonicWALL

SonicWall_Net   lmcip380        Fortigate_50A

~

When I push the policy I get the following message: "Installation completed
with warnings:



add_install_on_gw_to_set: install on gw object is not a firewall
(Fortigate_50A)

add_install_on_gw_to_set: install on gw object is not a firewall
(SonicWALL)"



I am working with Nokia support on this but so far they can't determine why
this doesn't work.



Any input would be greatly appreciated.  Thanks in advance!



Beverly




=================================================
To set vacation, Out-Of-Office, or away messages,
send an email to LISTSERV AT amadeus.us.checkpoint DOT com
in the BODY of the email add:
set fw-1-mailinglist nomail
=================================================
To unsubscribe from this mailing list,
please see the instructions at
http://www.checkpoint.com/services/mailing.html
=================================================
If you have any questions on how to change your
subscription options, email
fw-1-owner AT ts.checkpoint DOT com
=================================================

<Prev in Thread] Current Thread [Next in Thread>